containerd 1.2.10
Welcome to the v1.2.10 release of containerd!
The tenth patch release for containerd
1.2 includes only one main bug fix in the
CRI plugin, but includes updated vendors/build runtimes that fix 2 reported CVEs in
runc and the Golang 1.12 runtime respectively.
Notable Updates
-
Update the runc vendor to capture the fix for CVE-2019-16884. Fixed by PR #3685
- More details on the runc CVE in opencontainers/runc#2128, fixed by opencontainers/runc#2129
-
Update Golang runtime to 1.12.10 to handle CVE-2019-16276. More detail on the Golang CVE available in golang/go#34540
-
CRI fixes:
- Fix a bug that the default UNIX path is not in the default OCI config via the CRI plugin. Reported in containerd/cri#1279 and fixed by containerd/cri#1283
Please try out the release binaries and report any issues at
https://github.com/containerd/containerd/issues.
Contributors
- Michael Crosby
- Phil Estes
- Derek McGowan
- Lantao Liu
- Ace-Tang
- Akihiro Suda
- Sebastiaan van Stijn
- Tõnis Tiigi
- Wei Fu
Changes
b34a5c8af5
Merge pull request #3690 from estesp/prep-v1.2.109e6b7bb9f5
Prepare v1.2.10 release61f763ffef
Merge pull request #3687 from thaJeztah/1.2_backport_bump_golang_1.12.108d33d03519
AppVeyor: bump golang 1.12.10 (CVE-2019-16276)00427181b5
Merge pull request #3685 from crosbymichael/runc-release1.20c961b1867
Bump runc for CVE-2019-168848628ebfbaa
Merge pull request #3674 from Random-Liu/update-cri-release-1.24be2ad78fd
Update cri to 40affe7c7402d41618b9791a8cf105ac74ce56d0.710fca10d9
Merge pull request #3640 from crosbymichael/1.2-go-runc5d464752c3
Update go-runc to e029b79d8cda8374981c64eba71f28e
Changes from containerd/cri
40affe7c
Merge pull request #1283 from estesp/bp-12806d433c50
Backport fix for default UNIX environment in OCI container config
Changes from containerd/go-runc
e029b79
Merge pull request #54 from tonistiigi/notify-socketc0c55f3
avoid setting NOTIFY_SOCKET from calling processb4bc25a
Merge pull request #55 from containerd/travis6b4a1ca
Update travis to 1.12 and 1.139007c24
Merge pull request #52 from Ace-Tang/fix-error-return4e99c72
Fix Method of judging command execution failure7d11b49
Merge pull request #51 from fuweid/add-content-check8e51df4
Add common project content/checks
Dependency Changes
Previous release can be found at v1.2.9
- github.com/containerd/cri ad5dcc6cba067488d017540d06ebc08b21bb82bc -> 40affe7c7402d41618b9791a8cf105ac74ce56d0
- github.com/containerd/go-runc 5a6d9f37cfa36b15efba46dc7ea349fa9b7143c3 -> e029b79d8cda8374981c64eba71f28ec38e5526f
- github.com/opencontainers/runc v1.0.0-rc8 -> 3e425f80a8c931f88e6d94a8c831b9d5aa481657